Amendments to the Claims: 



This listing of claims will replace of prior versions, and listing, of claims in the application: 



Listing of Claims: 

1 1. (Cancelled). 

1 2. (Cancelled). 

1 3. (Cancelled). 

1 4. (Cancelled). 

1 5. (Original) A method of managing information about where to begin recovery after a 

2 failure, the method comprising the steps of: 

3 in a particular node of a multiple-node system, maintaining both 

4 a single- failure queue that indicates where within a recovery log to begin 

5 recovery after a failure of said node, and 

6 a multiple- failure queue that indicates where within said recovery log to begin 

7 recovery after a failure of said node and one or more other nodes in 

8 said multiple-node system; 

9 in response to a dirty data item being written to persistent storage, removing an entry 

10 for said data item from both said single-failure queue and said muhiple-failure 

1 1 queue; and 

12 in response to a dirty data item being sent to another node of said multiple-node 

13 system without first being written to persistent storage, removing an entry for 
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14 said data item from said single-failure queue without removing the entry for 

15 said data item from said muUiple-failure queue. 

1 6. (Original) The method of Claim 5 further comprising the step of sending the dirty 

2 data item to another node to allow removal of the entry from said single-failure queue 

3 without the other node requesting the dirty data item. 

1 7. (Original) The method of Claim 5 further comprising the steps of: 

2 after a single node failure, applying said recovery log beginning at a position in said 

3 recovery log associated with the single- failure queue; and 

4 after a multiple node failure, applying said recovery log beginning at a position in 

5 said recovery log associated with the multiple-failure queue. 

1 8. (Original) The method of Claim 5 wherein: 

2 said single-failure queue and said multiple-failure queue are implemented by a single 

3 combined queue; and 

4 the step of removing an entry for said data item from said single-failure queue 

5 without removing the entry for said data item from said multiple-failure queue 

6 includes marking an entry for said data item in said combined queue without 

7 removing the entry for said data item from said combined queue. 

1 9. (Original) The method of Claim 5 wherein said single- failure queue and said 

2 multiple-failure queue are implemented as two separate queues. 
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1 10. (Original) A method for recovering after a failure, the method comprising the steps 

2 of: 

3 determining whether the failure involves only one node; and 

4 if the failxu-e involves only said one node, then performing recovery by applying a 

5 recovery log of said node beginning at a first point in the recovery log; and 

6 if the failure involves one or more nodes in addition to said one node, then 

7 performing recovery by applying said recovery log of said node beginning at a 

8 second point in the recovery log; 

9 wherein said first point is different firom said second point. 

1 11. (Original) The method of Claim 1 0 wherein: 

2 the first point is determined, at least in part, by which data items that were dirtied by 

3 said node reside in caches in other nodes; and 

4 the second point is determined, at least in part, by which data items that were dirtied 

5 by said node have been persistently stored. 

1 12. (Original) A method for recovering after a failure, the method comprising the steps 

2 of: 

3 if it is unclear whether a particular version of a data item has been written to disk, 

4 then performing the steps of 

5 without attempting to recover said data item, marking dirtied cached versions 

6 of said data item that would have been covered if said particular 

7 version was written to disk; 
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8 when a request is made to write one of said dirtied cached versions to disk, 

9 determining which version of said data item is already on disk; and 

10 if said particular version of said data item is already on disk, then not writing 

1 1 said one of said dirtied cached versions to disk.. 

1 13. (Original) The method of Claim 12 further comprising the step of, if said particular 

2 version of said data item is not already on disk, then recovering said data item. 

1 14. (Original) The method of Claim 12 further comprising the step of, if said particular 

2 version of said data item is already on disk, then informing nodes that contain said 

3 dirtied cached versions of the data item that said dirtied cached versions are covered 

4 by a write-to-disk operation. 

1 15. (Cancelled). 

1 16. (Currently amended) A method for recovering a current version of a data item after a 

2 failure in a svstem that includes multiple caches, the method comprising the steps of: 

3 modifying the data item in a first node of said multiple caches to create a modified 

4 data item: 

5 sending the modified data item from said first node to a second node of said multiple 

6 caches without durablv storing the modified data item fi'om said first node to 

7 persistent storage; 

8 after said modified data item has been sent from said first node to said second node 

9 and before said data item in said first node has been covered bv a write-to-disk 
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10 operation, discarding said data item in said first node: 

11 after said failure, reconstructing the current version of said data item by applying 

12 changes to the data item on persistent storage based on merged redo logs 

13 associated with all of said multiple caches: 

14 Th e method of Claim 15 furth e r comprising th e steps of: 

15 maintaining, for each of said multiple caches, a globally-dirty checkpoint queue and a 

1 6 locally-dirty checkpoint queue; 

17 wherein the globally-dirty data items associated with entries in the globally-dirty 

1 8 checkpoint queue are not retained until covered by write-to-disk operations; 

19 determining, for each cache, a checkpoint based on a lower of a first-dirtied time of 

20 the entry at the head of the locally-dirty checkpoint queue and the first-dirtied 

21 time of the entry at the head of the globally-dirty checkpoint queue; and 

22 after said failure, determining where to begin processing the redo log associated with 

23 each cache based on the checkpoint determined for said cache. 

1 17. (Currently amended) A method for recovering a current version of a data item after a 

2 failure in a system that includes multiple caches, the method comprising the steps of: 

3 modifying the data item in a first node of said multiple caches to create a modified 

4 data item: 

5 sending the modified data item fi-om said first node to a second node of said multiple 

6 caches without durably storing the modified data item from said first node to 

7 persistent storage: 
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8 after said modified data item has been sent from said first node to said second node 

9 and before said data item in said first node has been covered by a write-to-disk 

10 operation, discarding said data item in said first node: and 

11 after said failure, reconstructing the current version of said data item by applying 

12 changes to the data item on persistent storage based on merged redo logs 

13 associated with all of said multiple caches: 

14 Th e m e thod of Claim 15 fiirth e r comprising th e st e ps of: 

15 maintaining, for each of said multiple caches, a globally-dirty checkpoint queue and a 

1 6 locally-dirty checkpoint queue; 

1 7 wherein the globally-dirty data items associated with entries in the globally-dirty 

18 checkpoint queue are not retained until covered by write-to-disk operations; 

19 maintaining, for each cache, a first checkpoint record for the locally-dirty checkpoint 

20 queue that indicates a first time, where all changes made to data items that are 

21 presently dirty in the cache prior to the first time have been recorded on a 

22 version of the data item that is on persistent storage; 

23 maintaining, for each cache, a second checkpoint record for the globally-dirty 

24 checkpoint queue, wherein the second checkpoint record includes a hst of data 

25 items that were once dirtied in the cache but have since been transferred out 

26 and not written to persistent storage; and 

27 after said failure, determining where to begin processing the redo log associated with 

28 each cache based on the first checkpoint record and said second checkpoint 

29 record for said cache. 
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1 1 8. (Original) The method of Claim 17 wherein the step of processing the redo log 

2 comprises the steps of: 

3 determining a starting position for scanning the redo log based on a lesser of a 

4 position in the redo log as determined by the first checkpoint record and the 

5 positions in the log as determined by the earliest change made to the list of the 

6 data items in the second checkpoint record; and 

7 during recovery, for the portion of the redo log between the position indicated by the 

8 global checkpoint record to the position indicated by the local checkpoint 

9 record, considering for potential redo only those log records that correspond to 
10 the data items identified in the global checkpoint record. 



1 19. (Cancelled). 

1 20. (Cancelled). 

1 21. (Cancelled). 

1 22. (Cancelled). 



1 23. (Original) A computer-readable medium carrying instructions for managing 

2 information about where to begin recovery after a failure, the instructions comprising 

3 instructions for performing the steps of: 

4 in a particular node of a multiple-node system, maintaining both 

5 a single-failure queue that indicates where within a recovery log to begin 

6 recovery after a failure of said node, and 
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7 a multiple-failure queue that indicates where within said recovery log to begin 

8 recovery after a failure of said node and one or more other nodes in 

9 said multiple-node system; 

10 in response to a dirty data item being written to persistent storage, removing an entry 

1 1 for said data item from both said single-failure queue and said multiple-failure 

12 queue; and 

13 in response to a dirty data item being sent to another node of said multiple-node 

14 system without first being written to persistent storage, removing an entry for 

15 said data item from said single- failure queue without removing the entry for 

16 said data item from said multiple-failure queue. 

1 24. (Original) The computer-readable medium of Claim 23 further comprising 

2 instructions for performing the step of sending the dirty data item to another node to 

3 allow removal of the entry from said single-failure queue without the other node 

4 requesting the dirty data item. 

1 25. (Original) The computer-readable medium of Claim 23 further comprising 

2 instructions for performing the steps of: 

3 after a single node failure, applying said recovery log beginning at a position in said 

4 recovery log associated with the single-failure queue; and 

5 after a multiple node failure, applying said recovery log beginning at a position in said 

6 recovery log associated with the multiple-failure queue. 

1 26. (Original) The computer-readable medium of Claim 23 wherein: 
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2 said single-failure queue and said multiple-failure queue are implemented by a single 

3 combined queue; and 

4 the step of removing an entry for said data item from said single-failure queue without 

5 removing the entry for said data item from said multiple-failure queue 

6 includes marking an entry for said data item in said combined queue without 

7 removing the entry for said data item from said combined queue. 

1 27. (Original) The computer-readable medium of Claim 23 wherein said single-failure 

2 queue and said multiple-failure queue are implemented as two separate queues. 

1 28. (Original) A computer-readable medium carrying instructions for recovering after a 

2 failure, the instructions comprising instructions for performing the steps of: 

3 determining whether the failure involves only one node; and 

4 if the failure involves only said one node, then performing recovery by applying a 

5 recovery log of said node beginning at a first point in the recovery log; and 

6 if the failure involves one or more nodes in addition to said one node, then performing 

7 recovery by applying said recovery log of said node beginning at a second 

8 point in the recovery log; 

9 wherein said first point is different from said second point. 

1 29. (Original) The computer-readable medium of Claim 28 wherein: 

2 the first point is determined, at least in part, by which data items that were dirtied by 

3 said node reside in caches in other nodes; and 

4 the second point is determined, at least in part, by which data items that were dirtied 

5 by said node have been persistently stored. 



50277-1776 (OID-200 1-026-02) -10- 



1 30, (Original) A computer-readable medium carrying instructions for recovering after a 

2 failure, the instructions comprising instructions for performing the steps of: 

3 if it is unclear whether a particular version of a data item has been written to disk, 

4 then performing the steps of 

5 without attempting to recover said data item, marking dirtied cached versions 

6 of said data item that would have been covered if said particular 

7 version was written to disk; 

8 when a request is made to write one of said dirtied cached versions to disk, 

9 determining which version of said data item is already on disk; and 

10 if said particular version of said data item is already on disk, then not writing 

1 1 said one of said dirtied cached versions to disk. 

1 31. (Original) The computer-readable medium of Claim 30 further comprising 

2 instructions for performing the step of, if said particular version of said data item is 

3 not akeady on disk, then recovering said data item. 

1 32. (Original) The computer-readable medium ofClaim 30 further comprising 

2 instructions for performing the step of, if said particular version of said data item is 

3 already on disk, then informing nodes that contain said dirtied cached versions of the 

4 data item that said dirtied cached versions are covered by a write-to-disk operation. 

1 33. (Cancelled). 
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1 34. (Currently amended) A computer-readable medium carrying instructions for 

2 recovering a current version of a data item after a failure in a system that includes 

3 multiple caches, the instructions comprising instructions for performinig the steps of: 

4 modifying the data item in a first node of said multiple caches to create a modified 

5 data item: 

6 sending the modified data item from said first node to a second node of said multiple 

7 caches without durably storing the modified data item from said first node to 

8 persistent storage: 

9 after said modified data item has been sent from said first node to said second node 

10 and before said data item in said first node has been covered by a write-to-disk 

11 operation, discarding said data item in said first node: 

12 after said failure, reconstmcting the current version of said data item by applying 

13 changes to the data item on persistent storage based on merged redo logs 

14 associated with all of said multiple caches: 

15 Th e computer readabl e m e dium of Claim 33 fiirthor comprising instructions for performing 

16 th e st e ps of: 

17 maintaining, for each of said multiple caches, a globally-dirty checkpoint queue and a 

1 8 locally-dirty checkpoint queue; 

19 wherein the globally-dirty data items associated with entries in the globally-dirty 

20 checkpoint queue are not retained until covered by write-to-disk operations; 

21 determining, for each cache, a checkpoint based on a lower of a first-dirtied time of 

22 the entry at the head of the locally-dirty checkpoint queue and the first-dirtied 

23 time of the entry at the head of the globally-dirty checkpoint queue; and 



50277-1776 (OID-200 1-026-02) 



24 after said failure, determining where to begin processing the redo log associated with 

25 each cache based on the checkpoint determined for said cache. 



1 35. (Currently amended) A computer-readable medium carrying instructions for 

2 recovering a current version of a data item after a failure in a system that includes 

3 multiple caches, the instructions comprising instructions for performing the steps of: 

4 modifying the data item in a first node of said multiple caches to create a modified 

5 data item: 

6 sending the modified data item fi-om said first node to a second node of said multiple 

7 caches without durably storing the modified data item from said first node to 

8 persistent storage: 

9 after said modified data item has been sent from said first node to said second node 

10 and before said data item in said first node has been covered by a write-to-disk 

11 operation, discarding said data item in said first node: 

12 after said failure, reconstructing the current version of said data item by applying 

13 changes to the data item on persistent storage based on merged redo logs 

14 associated with all of said multiple caches: 

15 The comput e r r e adable m e dium of Claim 33 fiirthor comprising instructions for p e rforming 

16 th e st e ps of: 

17 maintaining, for each of said muUiple caches, a globally-dirty checkpoint queue and a 

1 8 locally-dirty checkpoint queue; 

19 wherein the globally-dirty data items associated with entries in the globally-dirty 

20 checkpoint queue are not retained until covered by write-to-disk operations; 
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21 maintaining, for each cache, a first checkpoint record for the locally-dirty checkpoint 

22 queue that indicates a first time, where all changes made to data items that are 

23 presently dirty in the cache prior to the first time have been recorded on a 

24 version of the data item that is on persistent storage; 

25 maintaining, for each cache, a second checkpoint record for the globally-dirty 

26 checkpoint queue, wherein the second checkpoint record includes a Ust of data 

27 items that were once dirtied in the cache but have since been transferred out 

28 and not written to persistent storage; and 

29 after said failure, determining where to begin processing the redo log associated with 

30 each cache based on the first checkpoint record and said second checkpoint 

3 1 record for said cache. 

1 36. (Original) The computer-readable medium of Claim 35 wherein the step of 

2 processing the redo log comprises the steps of: 

3 determining a starting position for scanning the redo log based on a lesser of 

4 a position in the redo log as determined by the first checkpoint record and 

5 the positions in the log as determined by the earUest change made to the list of 

6 the data items in the second checkpoint record; and 

7 during recovery, for the portion of the redo log between the position indicated by the 

8 global checkpoint record to the position indicated by the local checkpoint 

9 record, considering for potential redo only those log records that correspond to 
10 the data items identified in the global checkpoint record. 
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